www.clearos admin manual

Upload: krishna-sireesha

Post on 12-Oct-2015

49 views

Category:

Documents


1 download

DESCRIPTION

cos

TRANSCRIPT

  • .

    / 16/RAM() ,,512

    () ,,2

    () CDUSB

    Ethernet,,DSL 12

    .,

    ,.,,,.

    :

    RAM()

    5 510

    1050

    50200

    / 500 1 2 3/RAM 512 1 1.5 2 1

    RAID

  • PCI,ClearOS

    .,,,.

    ClearOS,

    ..

    ClearOSDSL(PPPoE)

    .

    EthernetEthernet.

    DSLPPPoE,DSLPPPoE

    .,,.,.,,.

    ISDNISDN,

    Ethernet.

    RAIDRAID

    RAID

    ,RAIDClearOS.RAID,,,.RAID,O'Reilly:

    ,,FUD(fear,uncertainty,doubt).,,,RAID,.RAID,.?,

  • .,RAID,(,).,/RAID,,.(),.(DerekVadala)RAIDLinuxO'Reilly

    ,RAIDClearOS.

    RAIDRAIDClearOS,

    "Iwilldomyownpartitioning"().

    RAIDRAID.

    BIOS,RAID.,RAID,RAID.()RAIDLinuxO'Reilly:

    (RAID)RAID,RAID.ATA.

    RAID:

    AdaptecSCSI200x,21xx,22xx,27xx,28xx,29xx,32xx,34xx,39xx,54xx AdaptecIDE2400A 3wareIDEEscalade3W5xxx/6xxx/7xxx MegaRAIDSAS92404i MegaRAIDSAS92408i MegaRAIDSAS92604i MegaRAIDSAS92608i MegaRAIDSAS9260DE8i MegaRAIDSAS92618i MegaRAIDSAS92808e MegaRAIDSAS9280DE8e MegaRAIDSAS9280DE8e MegaRAIDSAS928024i4e MegaRAIDSAS928016i4e MegaRAIDSAS928016i MegaRAIDSAS8704ELP MegaRAIDSAS8704EM2

  • MegaRAIDSAS8708ELP MegaRAIDSAS8708EM2 MegaRAIDSAS8880EM2 MegaRAIDSAS8888ELP

    ,: SerialATA(SATA)RAIDLinux

    : Promise,TXFastTrak100FastTrakTX2000 AdaptecATARAID12xx

    ,RAID$150,,RAID).(,

    RAIDRAIDSerialATA(SATA)

    ClearOSEnterpriseRedHatEnterpriseLinux.,RedHatEnterpriseLinux,ClearOS.,RedHat.,,ClearOS.

    : .

    ,.

    .,,,,/.

    ,.

    Linux.ServerXYZRedHatEnterpriseLinux,,,ClearOSEnterprise.

    Linux,,

    .

    Linux

    ,.RedHat,.

    Dell() HP IBM

  • Linux. Supermicro Promise

    RAID

    DellOptiplex

    RAID.

    ,ClearOSEnterprise,().,(MD5).MD5?,MD5.

    MSWindowsCD,MD5.MD5Summer.Linuxmd5sum.

    ClearOSEnterprise: CD () ,PXE

    CDClearOS. BIOS,CD

    ; CDClearOS

    .(

    ),,20.ClearOS.USB:

    diskboot.img,.

    ,diskboot.img,.Linux,dd.

    PXEPXE,

    ClearOS.,CD.,.

  • ,.

    .USBSATA.

    .,ClearOS.,,.

    ,: Tab Enter

    .

    ,,

    .Tab,,OKEnter,

    .

    ,,(,'US').Tab,OK,Enter.

    ,CDROMDVD,LocalCDROM.,PXEUSB,Network(HTTP).

    /ClearOSEnterprise,Instal

    OK.,UpgradeOK.

    ,.

    .!

    ,(firewire).USB

    ClearOS. ,(

    ).. ,

    ..,,

  • ,,.

    CDROM,,

    /PPPoE,).(DSL,DSL

    ,

    .

    (ISP)IP,,

    IP.IP,TCP/IP.,.

    PPPoEClearOSPPPoEDSL.,

    .,DNSDNS.

    IPLANClearOS,

    .LANIP.,

    name:81.,:https://LANhost

    ,.

    !

    ,.,!

    /,,,

    .

    ,.

    .ClearOS.

    ,().,./.

  • RAID

    ,.,:

    RAID /home()/data()

    ,,/boot78,,,,

    '/'.

    RAID,

    ,(Iwilldomyownpartitioning).Linux.

    ..

    RAIDRAIDRAID,

    .RAID,,,.cext2,ext3,,LVM,RAID,vfat.

    ,,,..,.

  • RAID()..

    RAIDqRAID1

    RAID1,.''''()..,.RAID1,.RAID1IDE/SATA/SAS.

    RAIDRAID1,2.

    RAID().

    '(Createcustomlayout)'RAID.,.

    SATA.Linux:

    /dev/sda/dev/sdc

  • RAID.

    .

    Tab,(

    "") /, Tab,Delete ,

  • RAID,,RAID.,

    .RAID..

    (New) sda,sdc. ()

    () OK.

    ,sdcsda.

  • RAIDRAIDbootRAID,

    .

    (New) RAID sda. ()100 '' OK.

  • ,sdc

    .,100,RAID:

    RAID /boot RAIDRAID1 RAID,2,,

    ..

    (/),(/home,/var..).

  • RAIDRAID.,

    . GRUB ()

    GRUB,LILO.,:linuxlilo.

    (/dev/sdc),.(/dev/sda),.,:

    grubinstall/dev/sdc

    RAIDRAID5

    RAID5,.RAID,'',.,.RAID5.

  • RAIDRAID5,,,

    .RAID().

    SATA.Linux: /dev/sdb /dev/sdc /dev/sdd

    ,/dev/sdaRAID,,.

    ,RAID1,.

    ,RAID1,,.

    RAIDRAID5RAID5,

    /var/flexshare/shares..

    (New)

  • RAID sdb. ,''('Fillall

    availablespace') OK.

    sdcsdd,,.

    ,,

    RAID.

  • RAID /var/flexshare/shares RAIDRAID5 RAID,

    .

    OK

    RAIDRAID0

    GRUB

  • RAID0,.RAID.,,.RAID0,.

    RAIDRAID0,,,2

    .RAID().

    2SATA.Linux: /dev/sdb /dev/sdc

    ,/dev/sdaRAID,,.

    ,RAID1,.

    ,RAID1,,.

    RAIDRAID0RAID0MySQL,/var/lib/mysql

    ..

    (New)

  • RAID sdb,

    . ,''

    ('Fillallavailablespace') OK.

    sdc,,,.

    ,2,

    RAID.

  • RAID /var/lib/mysql RAIDRAID0 RAID,

    OKGRUB.

    RAIDRAID6 RAID5

  • RAID6RAID5,.RAID6,RAID5,.RAID,,.RAIDRAIDADGHP,.,RAID.RAID6.

    RAID64.RAID6RAID5,,RAID6RAID5RAID.

    RAIDRAIDRAID,,'cat

    /proc/mdstat'.RAID1RAID5,RAID.

    RAIDRAIDProcRAID.

    ,RAID:cat/proc/mdstat

    RAID,

    '',RAID.RAID,.

    (,

    ), 'watchca

    RAID

    t/proc/mdstat',.

    RAID? RedHat

    ,.:.:

  • .,.AltFX,:

    AltF1: AltF2:() AltF3: AltF4: AltF5:/CD

    ,

    ,.,,ClearSDN.

    .root,.

    ,,CTRL+ALT+F1(F1F6,F7XWindows,F8).

    ,CTRL+ALT+F8.

    ,

    .http://hostname_or_ip_address:81.81.,.

    .

    ,,.,

    ,IP(),,..

    .,,.

    ,IP,.

    .

    .,

    ,,..

  • .(example.com)

    ..

    .

    . ,gateway.example.com ,, , , , (),, , . .

    ,,

    ClearOS,.ClearOS.

    ,

    ClearOS.,

    .

    ClearOS(

    ),:https://IP_Address:81:http://192.168.1.1:81IP_Address,

    .,.

    ,: (httpshttp) (:81

    ).

  • (

    ).,.,,,.$100.

    ().

    root.

    ,

    .,.

    .,().

  • ,

    ClearCAREClearCenter.,.

    ,.

    ClearOS: DNS

    ClearCARE,ClearCARE.

    VPN DNS

    15,!,.

    :ClearCenterReg

    isterRegisterSystem

    ClearCenter,.,

    !,

    ClearOS. ,.

  • ClearCenterRegisterRegisterSystem.

    .

    .,

    ClearOS.

    . ClearCenterRegisterRegisterSystem.

    .

    .

    ,.,,:

    PCI ClearOS

    ClearOS.,,./,

    ,.

    .

    :ClearCenter

    >(Software)>(SoftwareModules)

    ClearCenter(ClearSDN).,,()ClearCenter>(Software)>(SoftwareModules).().

  • ClearCenter.

    ,,Go().,,.,!

    ,.,DMZ1:1NAT,.

    ,.RCClearOS().

  • ,

    ClearOS(CLI).

    yum

    :yumlistgrep,,

    .,,SMTP,:

    yumlist|greppostfix

  • ,postfix.

    yum,

    .:

    yuminstallappprotocolfilter

    ,.ClearOS.,Flexshare,

    ,/,.

    :

    : ,, ,

    ,

    .:

    .

    ,ClearOS,

    :

    allusers ,

  • domain_admins Windows

    WindowsWindows.

    ,ClearOS.

    ,/,.

    :

    .,.ClearOS:

    FTP OpenVPN PPTP Windows

    ,

    ,:

    ,: ,,, .

    ClearOS: :|;*

  • (SecureShell(SSH))(SecureShell(SSH)),

    .,:/etc/system/webconfig:

    allow_shell=1

    .

    ,

    .

    ,,: SSL(PKCS12) OpenVPN

    ,.,(root).

    :

    /PKCS12

    ,PKCS12.

    OpenVPNOpenVPN,

    VPN().:

  • LDAP

    ,,LDAP.LDAP,LDAP.

    LDAP/.,LDAP.

    ClearOSOpenLDAPLDAPLDAP.

    .ClearOS

    /,

    :

    LDAP

    LDAP: ,

    example.com ,LDAP

    LDAPLDAP,

    ,LDAP.

    .

  • LDAPLDAP

    .,,,,.

    LDAPClearOS.

    : :localhost DN:dc=clearos,dc=lan DN:cn=manager,cn=internal,dc=clearos,dc=lan :gbGKD86gEWXLYNRm

    LDAPldapsearchhlocalhostb"dc=clearos,dc=lan"\D"cn=manager,cn=internal,dc=clearos,dc=lan"\ssub

    "objectclass=*"xwgbGKD86gEWXLYNRm,.

    ,:ldapsearchhlocalhostb"dc=clearos,dc=lan"\D"cn=manager,cn=internal,dc=clearos,dc=lan"\ssub

    "objectclass=GroupOfNames"xwgbGKD86gEWXLYNRm

    .ClearOS.OpenVPN,

    ,.

    :

    ,

    ,.,,,,.

  • .,DNS,.

    (

    )

    ,

    ,,

    /,,

    ,,

    :

    /SSL.,OpenVPN,.,SSL,.

  • /SSL.OpenVPN/.

    .

    ,,..,/SSL,.,,.

    ,,,!

    CSV(,).,,.

    .

    /,.

    :

    CSV.,CSV,.

    : .. . CSV,,

    . ,

    .CSV.

    ,.,,

    ,.,.

  • :.,,.

    CSV.

    ..

    ,,.

    ,

    .

    ,,.,.

    username.,

    ...,CSV.

    firstName.

    .,CSV.

    lastName.

    .,CSV.

  • password,.

    ,.,.,.,CSV.

    street,.

    ,.,CSV.

    roomNumber.

    ,.,CSV.

    city.

    ,.,CSV.

    region,.

    ,.,CSV.

    country.

    ,.,CSV.

    postalCode.

    ,.,CSV.

    organization.

    ,.,CSV.

  • unit.

    ,.,CSV.

    telephone.

    ,.,CSV.

    fax.

    ,.,CSV.

    mailFlag,

    (POP3/IMAP/SMTP)..:

    TRUE FALSE

    mailquota,.

    .: 50 100 200 300 400 500 600 700 800 900 1000 2000 3000 4000 ()

    proxyFlag,.

    .:

    TRUE FALSE

  • openvpnFlag,OpenVPN.

    OpenVPN.:

    TRUE FALSE

    pptpFlag,PPTPVPN.

    PPTPVPN.:

    TRUE FALSE

    sambaFlag,eSamba.

    Windows.Samba.:

    TRUE FALSE

    ftpFlag,FTP.

    FTP.SambaFTP.:

    TRUE FALSE

    webFlag,.

    .:

    TRUE FALSE

    pbxState,IP,IP

    .: TRUE FALSE

    pbxPresenceState,IP,IP

    .: TRUE FALSE

  • pbxExtension,IP,IP

    .IPIP..

    groups,.

    .:administration,accounting,projects

    .

    /,

    .:

    IP

    ,,DNS.

    ClearOS:

    (,) (,

    ) (LAN),DMZ,/HotLAN

    .,

    gateway.example.com,mail.example.com,..,DNS,ClearSDN.,

  • :gateway.lan,mail.lan.,,(.)

    /DNSDHCPDSL/PPPoE,DNS

    IP.DNS.IPDNS,(ISP).MultiWAN,,DNS.

    ,,

    IP.::,,?IPClearOS:

    External LAN HotLAN DMZ

    External,LAN.

    ExternalExternal.ClearOS,

    ,External.,,External.

    ClearOS,.MultiWAN.

    LANLAN(),

    .IP:192.168.x.x10.x.x.x.,ClearOS:

    IP:192.168.1.1 :255.255.255.0

    ,IP192.168.1.2192.168.1.254.

    HotLANHotLAN()LAN

    .,HotLAN: (web,)

  • HotLAN,.,HotLAN,.,,.

    LANHotLAN.

    HotLAN.

    DMZClearOSDMZ,

    IP.IP,HotLANIP.DMZ:

    WAN:IP LAN:192.168.x.x DMZ:IP(,216.138.245.17216.138.245.31)

    DMZ,DMZ.

    DHCPEthernet,DHCP,

    .,DNS,DNS.DNS(MultiWAN),.

    PPPoEDSLPPPoEDSL,

    .,,DNS,DNS.DNS(MultiWAN),.

    IP,: IP (,255.255.255.0) (,1254)

    IPClearOSIP.IP,

    IP,IP.,IP.

    IPClearOS,,IP.

  • ,,.

    ,,.

    ,IP.,,,:

    (,,) /DSL,

    ,

    :miitoolethtooleth0,,

    ifconfigeth0IPeth0

    MultiW

    AN

    MultiWANClearOS.MultiWANClearOS,

    .

    MultiWANClearOS: ,

    ,MultiWAN,2DSL1/.MultiWANWAN.WAN#1,IP(VoIP)WAN#2.

    MultiWAN2/.,WAN.,"",..WAN1/.

    (WAN,WAN)

    ,.

    MultiWAN,.

    WAN.

  • ,WAN.

    MultiWAN..34/1.

    ,(LAN)

    WAN..

    WAN.,DNSWAN.

    ,

    .,MultiWAN.,2,,3,4

    DNSDNS,ClearOS,

    .,#1DNS.DNS#2,#1.:DNS#1.

    DNS,.DNS,OpenDNS.

    :DHCP/DSLDNS.

    DMZ#1,

    ,,#1.#2.

    DMZ.

    DHCP

    (DHCP)IP.,.

  • ,.

    :

    DHCP

    DHCP

    ,DHCP,.

    ,DHCP.,.

    ,

    DHCP.(:example.com),(:lan).:

    scooterDHCP ,DHCP,example.com example.com.

    ():scooter.example.com

    ,DHCP.

    DHCP,,,/.

    ,.

    IPIP,.

    ,PPTPVPNIP,99IP,

    DHCP..

    DNSDNS,DHCP

    .IPDNSClearOS.,DNS.

  • WINSMicrosoftWindows(WINS),

    IP,MSWindows,.WindowsWindows.IPClearOS,Windows.

    TFTPTFTP,IPDHCP

    .TFTPIP.

    NTPNTP(),IP

    DHCP.,,.

    ,DHCP,

    .DHCP,.

    (1)DHCP DHCP.

    DNS

    DNSClearOS IP

    DNS

    ,,IP,,,,..,.,:

    IP:192.168.1.10 :fileserver.example.com

    ,().

    backup.example.com.,

    ,,

    .,fileserver.example.comfileserver..?DHCPClearOS,

  • .,:example.com.,DHCP,,(fileserver),(fileserver.example.com).

    NAT

    NATIPIP.

    ,.

    :

    NAT

    NAT:

    NAT.

    NAT(,!).

    NAT,TCP80,

    NAT.

    NATMultiWANMultiWAN,,

    .NATMultiWAN.

    ()

    .,,IP.,

    !

    ,

    .

  • :

    XIP :,

    IP :IP69.90.141.13

    XIP :IP :IP1.2.4.5

    XIP :,IP :SSHIP192.168.2.16,IP

    69.90.141.13

  • ,,ClearOS,..,

    .

    ,.

    :

    .

    SSH/IPSSH(22)

    IP,(..,,..).

    #DenyallSSHconnectionsiptablesIINPUTptcpdport22jDROP#AllconnectionsfromaddressxyziptablesIINPUTptcpsource1.2.3.4dport22jACCEPTiptablesIINPUTptcpsource5.6.7.8dport22jACCEPT

  • #DenyallwebconfigconnectionsiptablesIINPUTptcpdport81jDROP#AllconnectionsfromaddressxyziptablesIINPUTptcpsource1.2.3.4dport81jACCEPTiptablesIINPUTptcpsource5.6.7.8dport81jACCEPT

    DMZ

    DMZIP.,DMZ.

    IP(),NAT.

    (192.168.x.x10.x.x.x),HotLANIP.

    ,.

    :

    DMZ

    DMZ,

    DMZ.,,(eth2):

    :DMZ IP:216.138.245.14 :255.255.255.240 :216.138.245.16/26

    IP,,216.138.245.18216.138.245.30.

    ,(

    ping).DMZ,: IP IP IP

    (DMZLAN),DMZ

    .,,2401(192.168.2.2).DMZ,.

  • .,,.,

    .

    ,.

    :

    (,) ,/

    ,.

    .:,

    ,(,).,.,,.,,,..

    ,,.

    ..,.

    ,

    /.,.

    .,.

    :

  • ()ClearOS ClearOSIP

    :

    ClearOS,

    ().ClearOS,,.,OpenVPN,UDP1194.

    ClearOS.,TCP81.

    :

    ,

    ,.

    ,

    ClearOS.,,.,IP.

    ,.

    ,.

    :

  • /

    ,,..,,,.

    /: / IP/

    (

    )

    ///.

    ,80()/

    //.

    ,,,(?)202.2.96.0/19.

    ,.,,

    ,.,,

    PBX(),.

    ,.

    :

    ClearOS,.,:

  • (80)192.168.4.10 SSH(22)192.168.4.10.22

    ,(2222).SSH2222192.168.4.10.

    ,

    ClearOS.

    VPN

    IPsecVP

    N

    ,,ClearOS.

    ,.

    :VPNIPsecVPN

    VPNClearSDNVPNClearSDNIPsecVPN: IP

    VPN

    VPN,.ClearOS,.

    VPN,.VPN,,VPN.

    ,VPN.:

    ()

    IP,,...

    ,

    VPN

    VPN,!

    VPNClearCenter..

  • IP,VPN.,,VPN:

    VPN,1,VPN4.

    VPNMultiWAN

    VPN,VPN

    ,.

    .

    IPsec,:IP

    ,,,.,.ClearOSVPN.

    ,VPN.

    .VPN,.,.

    IPsec.Windows

    VPN.,,:

    ,.

    ,,

    IPsec.(X.509),,,.

    ,128VPNPPTPOpenVPN.VPNIPsec

    ,.

    IPsec,.

    ,IPsecIPsecClearOS.

  • ,ClearOS.OpenSwan.

    IPsec IPsecNAT.,IP

    192.168.x.x10.x.x.x,NAT.

    OpenVP

    N

    OpenVPNVPN.OpenVPN.VPN,PPTP,OpenVPN

    .

    ,.

    :V

    PNOpenVPN

    OpenVPN,

    .OpenVPN.

    ,OpenVPN,,example.com

    WINSOpenVPNWINSWindows.

    ,WINSOpenVPN.ClearOSWINS,,IPClearOS.

    DNSOpenVPNDNS.ClearOSDNS

    ,,IPClearOS.

    OpenVPN,.

    ,.,,OpenVPN,.

  • OpenVPNWindows: OpenVPN(

    ) .

    ,,OpenVPNWindows.

    PPTPV

    PN

    PPTP,VPN.PPTPVPNMSWindows2000,XP,Vista,7.ClearOS

    .

    OpenVPN

    IPIPPPTPVPN.

    ,.,DHCPClearOSIPx.x.x.100..(100)PPTP.

    PPTPVPN128.,

    VPN()40..

    ,PPTP,.

    WINSPPTPWINSWindows.,

    WINSVPN.ClearOSWINS,,IPClearOS.

    DNSPPTPDNS.ClearOSDNS,

    ,IPClearOS.

    PPTPVPNClearOS

    PPTP..

  • MicrosoftWindows

    MSWindowsXPPPTPWindowsXP. () VPN , (

    )

    PPTP

    VPNPPTPVPN

    ,PPTP.ClearOS.,PPTP,:PPTP,PPTP,.

    PPTPClearOS,,PPTPVPN,PPTP,.,PPTP,PPTP.,,.

    ,PPTPPPTP,.,./etc/firevallfile,:

    PPTP_PASSTHROUGH_FORCE=yes:/sbin/servicefirewallrestart

    619,PPTPPPTP,,

    .PPTP,,ClearOSPPTP.:PTYGRE/var/log/messegeslogCLearOS,,PPTP.

    ,..

  • PPTP.ClearOS,PPTP.

    PPTPPPTP

    ClearOS,PPTP.

    ,PPTPPPTP.,ClearOSPPTP,PPTP.PPTPPPTP,.

    PPTPPPTPIP.

    ,(,ClearOS),PPTP,.:,PPTP.

    PPTP(ClearOS).,PPTP,:

    PPTPRFC3.1.3,.,PPTP,PPTPMicrosoft,,NT4.0SP4.PPTP,,,,.,..

    PopTopPPTP

    .ClearOS,:

    ,.

    :

  • ClearSDN

    ,ClearOS,ClamAV..ClearOSEnterprise!

    ,ClearSDN.,ClearCenter.

    ,.

    ,zip,

    ..,,.

    Zip(zip),

    .

    Zip.

    ,zip,.

    ZipZipzip,zip,

    zip,zip...,.

    (ClamAV)ClearOS

    .,

    ClamAV

    ,,,.,,.

  • ,.

    :

    ClearSDN

    ,ClearOS,ClamAV..ClearOSEnterprise!

    ,ClearSDN.,ClearCenter.,

    .

    ,

    .,.

    ()ClearOS.

    ,,.

    .

    ,.

    SSL,

    SSL.,.

    URL

    (URL).,URL,.

    ClamAV

  • QoS

    .,IP,IP.

    ,

    .

    :QoS

    ClearSDN

    ..

    ,

    .2: ,

    ,

    ,,,

    (,VoIP)..

    /()

    ./,.

    .,:

    .

    .

  • ,.

    ,

    . . ,. ,

    .

    /.

    .:

    1000/ 200/, 300/, 500/

    ,900/,300/,()500/,.200/,.

    ,

    .,.

    ,

    .

    IP/IPIP: IP IP

    ,IP.

    IP(,192.168.1.100192.168.1.200),IP

  • .,192.168.1.254100/:

    IP192.168.1.1:192.168.1.254 100/ 100/

    [|/].,IP.,192.168.1.x500/:

    IP192.168.1.0/24 500/ 500/

    192.168.1.x,500/().,

    500/.

    .,,80.,.

    ,

    /,().

    /,.,.,

    .

    .: 1000/ 200/, 300/, 500/

    ,900/,300/,()500/,.200/,.

  • ClearOS,

    .,IP.,,..

    ,.

    300/,,

    . Web_proxy_limit :80 300/ 300/

    192.168.1.100100/ Download_to_workstation100_port80 IP:192.168.1.100 :80 100/ 100/

    192.168.1.100100/

    . Upload_from_workstation100 IP:192.168.1.100 100/ 100/

    1.2.3.4100/1.2.3.4

    100/(). Download_from_remotehost_port80 IP:1.2.3.4 :80 100/ 100/

  • 1.2.3.4100/.

    ,1.2.3.4,.

    Upload_to_remotehost IP:1.2.3.4 50/

    VoIP/SIPSIPVoIP,

    .2,.

    SIP :from_sip IP:1.2.3.4

    SIP

    800/

    :to_sip IP:1.2.3.4 800/

    /,/,,

    .,:

    : 1000 8

    : 11000 18000

    Linux HTB

    ,ClearOS,,

  • ,,,.

    ,.

    :

    ClearSDN

    ,.,ClearCenter.,

    .

    .,

    .,..

    .,,.

    .

    ,,,,.,chat,

    ClearOS.

    Snort

    ,.

    :

  • ClearSDN,

    .,ClearCenter.,

    .

    IP,,

    .

    SIDSID,.

    ,,.

    IPIP,.IP,

    ,.

    //,.

    ,

    .,.

    IP,

    .,.

    .,,,.,:

    VoIPSkype

    ,.

    :

  • ,.

    ,,:

    VoIP

    .,,,ClearOS.

    ,,

    .,VoIP,VoIP/PBX.,IP:

    (,voip_server)IP

  • L7

    (IPMAC),.

    ,.

    :

    (,,)

    (,12:0013:00)./:

    /

    ,.

    ,,2.12:0013:00.().

    ,

    .,,.IP:192.168.1.100192.168.1.255,IP,DHCPIP.

  • ,

    ACLACL.

    /.

    ACL.,

    ,.

    ,ACL

    .,,Lunchtime,12:0013:00,,Lunchtime,.,,Lunchtime,.

    ,

    /,IP,MAC.,,

    .().,,ACL,.

    IP(,),,IP.IPIP().:

  • 192.168.1.100 10.0.0.121 192.168.1.100192.168.1.150

    IP.,IPIPIP.

    MACMAC,.MACIP,,,,,IP.MAC.,,MAC.

    ACLACL

    .

    .,,(,),.

    ,AllEmployeers,LunchHourStaff()HourlyEmployees.

    ,,.,,AllEmployees,ACL

    IP,,MAC,ACL,,,(12:0013:00).().

    ,12:15,,IPLunchHourlyEmployees,.

    ,13:15,,IPHourlyEmployees,.,.,,IPHourlyEmployees,.

    ,ACL(,,/),.,

  • ,ACLIP00:0024:00.

    ACL,ACL,.

    MAC

    LinuxLinux,MAC.

    MAC,ifconfig,:ifconfigeth0eth0(Ethernet).

    MSWindowsMACMSWindows,Run.

    cmd.Windows:ipconfig/all.MACPhysicalAddress.,

    MAC,.

    Squid

    .;,,Hotmail,.

    ,,URL.,,(,).,.

  • ,.

    :

    ClearSDN

    ClearSDN.,ClearCenter.,.

    ClearOS.,

    .

    ,,

    ..

    ,

    3128,8080.

    ,,,.,,.

    ,.

    .,..

    /MIME

    ,.,,.

    ,.,,,,"".

  • MIME,MIME..MIME,MIME,,,,.

    /,,

    ,,,.

    ,,,.,.

    ,,,.,,.,BBCNews.bbc.co.uk,.bbc.co.uk,,.

    /IP

    IP,.IPIP,

    .IPIP,.IPIP,

    .IPIP,.IP,,.,.

    IP

    .,IPStaffIP.

    .,.

    ,,.,,proxies.

  • ,.,,,.

    .

    ,.,,.

    ,

    .,.

    PICS.

    ,.,.

    ,,

    : IP

    ,

    () HTML

    IPIPURL

    .:,MIME,..

    .

    .,..

  • ClearOS,HTTP,FTP.,

    .

    ,

    .

    (,,PDF,..)

    ,.(,).21,,..

    (,),

    .,,.

    .

    .

    .(HTTPS).

    ,

    .

    .

    ,

    .

    .,

  • .,.

    ,

    .

    ,.,

    ,.: ,MicrosoftIIS,

    ,MicrosoftIIS,

    (PVRs)Tivo

    .TiVo204.176.0.0/14.: IP ()

    ,.IP,ClearOS,.

    ,,

    .MSInternetExplorer,.MSInternetExplorer:

    IPClearOS().,.

    ?? ?,

    !,.

    FTP

    ?,8080.,3128.

    FAQSquid::FTPSquid?:.SquidHTTP.

  • Squid

    MySQL

    MySQL.

    ,.

    :

    MySQL(ServerDatabaseMySQL)

    : MySQL

    ,.,!,MySQL,.

    ,.().,

    .

    phpMyAdmin http://www.mysql.comMySQL

    ClearOS.

    ,.

    :

  • : ,

    .,

    ,,..,,.

    ,()..

    ,: ,,

    1,: ,:LaserJet (),:101 (),:

    2,USB.

    .

    3,.

    ,

    4,.

    ,.,.

    .

    ,,.

    Windows

    .

    ,Windows(Windows).,

    Windows.

    CUPS

  • WindowsCUPSIPP

    FTP

    ClearOSFTP,Flexshares().

    ProFTPd

    .:

    Flexsheres

    ,.

    :

    ,,.,.,.

    Flexsha

    res

    Flexshare,:

    (HTTP/HTTPS) FTP(FTP/FTPS) (Samba) (SMTP/MIME/SMIME)

    ,.(Eng123OEMXYZ)Flexshare.Flexshare,Eng123,OEMXYZ.CAD(),,,Eng123.(Samba)Flexshare

  • VPN,,.

    FTP(FTP)Flexshare,OEMXYZ.,CAD,,,,.Eng123OEMXYZOpenOfficeCalcPDF,Eng123Flexshare.,(.ods.pdf).,FTP.,OEMXYZCAD.Flexshare,OEMXYZ,,,.

    Flexshare.Flexshare,:,

    .

    ,

    .

    . FTP Windows

    POPIMAP

    ,

    .,

    ,().,,.,,.

    ().

  • ,,

    .().,.

    .,(,FTP,).

    ,,.

    .

    /.

    (

    ),(,,PHPCGI).

    ,.

    .,

    ,./.

    ,

    .(),

    .(,80HTTP443HTTPS),,,.,,Apache.

    URL()URL,

    .,

    ..

  • :,,,,.

    ,,

    (,index.html,index.php).,(FTP).,.

    SSL(HTTPS)HTTPHTTPS.,

    (HTTPS),.HTTPS.

    (,80),

    .,,.

    ,,

    (,).,.,,.

    (),.

    .,(SalesTeamSecureFlexshare)().

    PHPPHP..php/php4/php5

    PHP,Apache.CGIPHP,CGI.,CGI

    /cgibin(,http://example.com/flexshare/sales/cgibin/store).

    FTPFTP

    ()FTP.FTP,,.

    FTP,,,(,,).

  • FTP.,FTP,./.

    ,FTP

    .URLFTPURL().

    ,FTPSSL(HTTPS)FTPFTPS.,

    (FTPS),.FTPS.

    FTP/FTPS2121/2120

    2123/2122().,.

    :Apache,FTPProFTP,.ProFTPFTPFTPS21212123,,/FTP,(,..)

    (PASV)FTP,

    .,,..

    ,.

    ,.,,.

    ,,FTP

    .FTP.anonymous

    ().,.

    ,.

  • ,.,.

    (SAMBA)

    (,).

    .

    ,,,./.

    ,

    .,

    .,

    .,(,

    ).

    ,.,.

    ..,,,(ACL).

    .

    ,,,./.

    ,,,,.

    ,

    .

  • ,

    .:

    /var/flexshare/shares/FLEXSHARE_NAME /mail

    ,

    ,Dir=PATH,PATH.

    ,.,,

    ()..

    5,..

    (),

    (),,.

    ,

    :ACL.,

    .ACL()ACL()

    ,.

    ,.,,.

    :,.SSL4.0.

  • ,..

    .,.,,.

    ,,,.

    ,,,

    .

    ,

    ..

    FTP

    FTP.,,,,.,FTP,,./ets/hostsIP,,.,DNS.,IP(,127.x.x.x192.168.x.x10.x.x.x).,FTP,FTP.

    Windows

    ,:X:.WindowsIRPStackSize,Windows..

    ProFTP FTP

  • email(,sales@,info@,..)email.,,[email protected]

    .

    ,

    .

    (),,.,.

    ,,veruca.salt,,veruca,veruca.saltveruca,.

    .,3,[email protected],sales.,CTRL.

    .,.,,,(),().,,.

    ()/

    .

    ,

    ..

  • ,

    .

    ,(),

    ,..

    ,,,.,,.

    ..

    [/],SMTP.

    ,

    ,.,

    .,,,.

    (),

    .,,.

    "",,""

    "","".

    .,(,,>1.).

    ,,N*,N.

    .(,,..).,,,.

  • ()(,).

    ,

    .(),.

    ,.

    12,,,.

    .,

    /etc/archive.conf,encryptpasswordlength.

    ,,2.

    SMTP.,,.

    .,.

    ,(),,.

    .

    ,.

    ,.

    ,.,,(5)

    ..

    ,,,,,

    ().,,,,.

    ,.

  • .

    ,().,.

    ,(),,,.

    ,.,.

    ,

    .,(,,,,,),.,,.

    ,.

    .().

    MySQL,

    ,,.,,(..),.

    /,,

    ..

    ,.

    ,("+").

    .

    (),

    ..SMTP,

    .

  • (root)(users)()

    ('root'),.,ACL.

    'root',.,,'user',,,./,

    ,.

    MySQL.

    MySQL,.,:

    cat/etc/system/databasepassword=AAAAAAAAAAAAAAAreports.password=BBBBBBBBBBBBBBzoneminder.password=

    CCCCCCCCCCCCCCCarchive.password=PASSWORDdspam.password=DDDDDDDDDDDDD'archive.password'.,MySQL,MySQL,

    ./usr/share/systemmysql/usr/bin/mysqlDBNAMEuUSERpPASSWORD:DBNAME=archive_currentorarchive_searchUSER=archivePASSWORD=

    /etc/system/database:,?:.,

    .

    ,ClearOS.,

    .

    ,.

    :

  • :

    POPIMAP

    ClearOSPOP,IMAP.

    ,.

    :

    POP/IMAP

    4: IMAP IMAP POP POP

    ,.,,SSL.

    (PushEmail)PushEmail(

    IMAPIdle).,,..,,PushEMail(IMAPIdle):

    Thunderbird ChattermailPalmTreo FlexMailWindowsMobile

    POPMozillaThunderbirdMozillaThunderbird,,

    ,.,(SSL).

  • POPMSOutlook/OutlookExpressOutlookOutlookExpress,,

    ,,""."","

    (SSL)".

    POP,.

    .,,

    .

    POPIMAP,.:

    POP110 POP995 IMAP143 IMAP993

    ClearOS SMTP

    .ClearOS,,,:

    ,.

    :

    ,ClearOS.

    ,

    .

  • :

    "",.13.

    .,gmail.com. .,POP3,

    IMAPAPOP.,,,"".

    . . ,

    (..). ,

    .

    ,.

    ,.(fetchmail)/var/log/maillog.,:

    ServerCommonNamemismatch:localhost.localdomain!=mail.clearfoundation.com,SSL

    .

    SMTP

    SMTP.,SMTP:

    ,[email protected]

    ,[email protected]@[email protected]

    ,:

  • ,.

    :

    SMTP

    SMTP

    ,.

    .,.,mail.yourdomain.com.,.

    ,SMTP/.1,,.

    SMTP,,,/.

    SMTPThunderbirdMozilla'sThunderbird,,.

    ,,.

    ,,.

    SMTPMSOutlook/OutlookExpressMSOutlook/OutlookExpress,,.

    ,,.

    ,(Myserverrequiresauthentication).,.

    (CatchAllUser),.,,.

    ,SMTP.

    IP.,.

    IP192.168.x.x.IP10.x.x.x,10.0.0.0/8.

  • 25,

    .(OutboundRelayHosts).

    /,,

    ,.,"clearfoundation.com",,,:

    clearos.com clearfoundation.net

    .

    .?

    ,,,,

    .,,.,,

    .

    :25

    .

    25,

    .,,,SMTP,.

    POP/IMAP

    ,,,.

  • ,

    .

    83HTTPS.

    https://192.168.1.1:83/https://yourdomain.com:83/ ,

    83(). ,IMAP. ,

    .,.,,

    .

    /.

    : ,

    ,.

    ,.

    :

    ClearSDN

    ,ClearOS,ClamAV..ClearOSEnterprise!

    ,ClearSDN.,ClearCenter.,.

  • .

    : (

    )

    ,:,

    ..

    ,

    ...

    ,.

    ,.MicrosoftOffice(.bin).

    ,MicrosoftOffice,,.bin.

    ,.

    ,.

    ,.

    :

    ClearSDN,ClearOS,

    SpamAssassin..ClearOSEnterprise!

    ,SpamAssassinClearSDN.,ClearCenter.

  • ,.

    (),,

    .,,.

    /,

    .,,,.,

    PremierInvest0rRep0rt,[SPAM]PremierInvest0rRep0rt..

    (OCR)

    .OCR(),.

    ,

    . ,

    .,.

    ,,,,,..

    ,.,.

    ,*.example.com.gov.,*@example.com*.gov

    ClearOS: ,, ,()

    .

    .

    ,.,.

  • ,

    .,,:

    [email protected],

    [email protected],

    ,.

    .

    ,.

    :

    .,,,.,.,,,,.,,.

    ,,,

    .

    ,,

    (35).,.,[email protected],[email protected].

    ,:

  • (,)

    ,.

    :

    ClearOSApache,.

    ,.

    :

    (,www.example.com).

    ,.

    SSLSSL

    .,.,,.,https://your.domain.com,http://your.domain.com(httpshttp).SSL,128.

    SSL.ClearOS,,.,($50).(),.

  • .

    .

    : PerlCGI PHP JSP ASP

    PHPCGI..

    ,FTP,

    ,.,FTP,.

    FTP,

    FTP.FTP.FTP:2121,6500065100.

    Samba

    IP.

    WindowsWindows,IPUNC

    .\\ip_adress

  • MacOSXMacOSX,Command+K,

    CIFS.cifs://ip_address

    (80)

    .,,HTTP,.

    ,80(HTTP)443(HTTPS/Secure).

    ()?

    Windows

    Windows

    ClearOS,Windows.,

    .,

    ,.

    :

    WindowsWindows

    ,,:clearserver.

    .,

    .:.

    ClearOS,

    Windows.:

  • (Raw)

    WINS/WINS,WINS

    Windows.,WindowsWindows,(,).WINSClearOS,IPWINS.

    .Windows(winadmin)Windows.

    ,ClearOS.,.

    ClearOS

    .

    ,,.,ClearOS,.

    /PDC,:Windows,:.,.

    netlogon,Windows(winadmin)netlogonClearOS(>>>>\\servername\netlogon).

    .,

    ClearOS./home/usernameClearOS.

    .

    ,,.

    Windows7Windows7ClearOS,

    .HKLM\System\CCS\Services\LanmanWorkstation\ParametersDWORDDomainCompatibilityMode=1DWORDDNSNameResolutionRequired=0

  • ,.Windows7,:

    ChangingthePrimaryDomainDNSnameofthiscomputerto""failed.Thenamewillremain"MYDOM".Theerrorwas:Thespecifieddomaineitherdoesnotexistorcouldnotbecontacted

    .

    Microsoft,ClearOS;.

    ,UNC.

    \\serverIPadress(,\\192.168.1.1) Enter.

    Windowsnbtstat..192.168.1.1,:

    nbtstatA192.168.1.1

    ,.

    .

    :

    ,.,,,.

    .,

    .

  • ,

    ,.

    ,

    .guylafleur.,,,,,.

    /:

    /

    .

    :

    /,

    .,,,.

    ,.

    (,).

  • NTPNTPClearOS.

    ,: VoIP/PBX Windows

    NTPClearOSDHCP;DHCPNTP.

    .ClearCenter(!)

    ClearOS. time1.clearsdn.com time2.clearsdn.com time3.clearsdn.com time4.clearsdn.com

    ,

    ClearOS,.

    .

    :

    ,,..

    .,,.

    .

    :

  • SMTPSMTP.

    ,.SMTP

    25.

    SSL/TLS,.

    .

    .

    ,:

    (),,.,,.

    ,,,,localhostSMTP.,.,SMTP.

    SMTPSMTPClearOS,

    (,25).,,:

    /SMTP(25)

    SMTP

    ()

    Google(Gmail)Gmail,

    [email protected].

    SMTP:smtp.gmail.com :465

  • SSL/TLS:TLS :[email protected] :the_password

    .

    .

    :

    ,.,!

    .CearOS,ClearOS

    .

    .

    :

    ClearSDN

    ,..MySQL,,LDAP,,.

    .

    ,,:

  • (,),

    .

    ,,

    .: ClearOS. ,ClearOS

    . ClearOS,

    . .

    .,.,.

    RAID

    RAID

    .RAID.RAID

    .

    :RAID

    .

    .

    ,.

    :

  • ClearSDN,,

    ClearOS.,.

    (

    ).,..

    Philesight

    ClearOS.,,

    .

    .

    :

    ()

    ClearOS.

  • .

    :

    ,,.

    ,,..,,,(,).(,,..),

    .

    ,.

    :

    ,.

    .,(,,USB),.

  • ,(,,USB..)

    ,.,

    /mnt/dmcrypt/.

    .

    ().,

    15%.

    ,

    .

    FAQ()

    ?,

    !

    ?!.

    SSL,,,SMIME.

    (CA),CA,/(/)

  • .CA.

    ,SSLCA,ThawteVerisign,50300.(!),(,,,..).CA,,,HTTPS(HTTPSSL),,.

    SSL(CSR).CSR

    CSR,CA.CSRCAx509SSL(CRT).CA,CSR,

    CRTCA,/().(.keykey.pem)CSR(,).,

    (/etc/ssl/private).

    .SSL

    .

    (CA)(CA),

    /.,CA,,.

    SSLCA,.CA,,.SSL,.

    CA,,PKCS12.CA(/etc/ssl),CA,..

    RSA.1024()

    .1024.,RSA,

  • ,(128,40256),/.

    .,

    ,..

    ,CA.

    .

    ,.

    ,,.

    //,,.

    ,.

    2ISO3166.

    CA,,

    [email protected]

    ,.,CA,PKCS12.,,.,SSL,.

    .

    /,RSA..,,(,..),.(CA),.

    ,(RSA),

    ().CA,,3,.,,CA,.

  • ,.

    CA,

    .(/FTP/)RSA(1024),CA().,(.).,,CA,,.

    CA,

    SSL,,.,JoeDeveloper...,25(),.:PKCS12PKCS12.(PKCS12),,.PKCS12,..SSL.

    CA.

    ,.(,),.()CA.,,,CA.,.,PEM.PEMBEGINCERTIFICATEREQUEST()ENDCERTIFICATEREQUEST,,CA.CA(48),SSL,.,.,..

    ,(PKCS12)

    (PKCS12),.PKCS12SSL

  • ClearOS,,CA/.

    PKCS12PKCS12,

    //./PKCS12.PKCS12,,.(JoeDeveloper)CA,Joe([email protected]).PKCS12.,,.()PKCS12,,.PKCS12.,,PKCS12.,PKCS12,,PKCS12..

    PKCS12PKCS12,

    PKCS12.,,,.PKCS12,,,.PKCS12JoeDeveloper.,JoeDeveloper,,()PKCS12.PKCS12,.,,.,,,PFXWindows.(,FTP),PKCS12.

    Thunderbird.MozillaThunderbird,(.).

    PKCS12PKCS12Thunderbird

    ookExpress.Outlook/Outl

    Thunderbird,,PKCS12

    .,.Thunderbird..,...

  • PKCS12,..,,,.,Thunderbird.PKCS12,.,PKCS12SSLClearOS..,,.PKCS12,,CA..,,PKCS12.CA,.,.OK.,,,,..,,,,.OK.,OK.,

    ,.

    Outlook/OutlookExpressOutlookOutlookExpressWindows

    /.PKCS12MicrosoftXP.>..,..,.PKCS12,.X509PersonalInformationExchange,.,..SSLClearOS,PKCS12.,..,.,PKCS12.Thunderbird,Microsoft.,,.

    ,,

    .,.,,PKCS12.,CA.

  • 2,

    .SSL().

    Web/FTP

    FTP,.

    .

    WebsiteURL:https://secure.clearcenter.com/portal/ CommonName=secure.clearcenter.com [email protected]

    /

    ,

    /.

    EmailAddressofSender:[email protected] CommonName=JoeDeveloper [email protected]

    OpenSSL CACert

    ClearOS.

    ClearOS.:

    ,

  • ,(,)

    ,.

    :

    ClearSDN

    .

    .

    .

    .

    ,.

    SSH()

    ClearOS.

    LinuxMacOSLinuxMacOS,,SSH.Mac,

    .:

    [email protected].,

    ClearOS.

  • WindowsWindows,PuttySSH

    /.,:

    IP root

    ClearOS.

    SSH,SSH(

    22).

    SSH.

    SSH,,

    .

    SSH

    .SCP(SecureCopy,).LinuxMac.WindowsWinSCP.MacFugu,SCP.

    POSIXSCPCP(copy,).,,:

    [email protected]:/var/test.txt/varserver.example.com,root

    ..

    Putty WinSCP scpman

    ClearOS.?

    IP(,).

    :IP;(,).,,,.

    .ClearOS,,,

  • !,,IP192.168.1.x.256IP/24255.255.255.0.:

    192.168.1.0/24, 192.168.1.0/255.255.255.0

    ,(192.168.1.0192.168.1.255).254IP

    .

    .

    IP /8255.0.0.0 19777214 192.168.1.1192.255.255.254/16255.255.0.0 65534 192.168.1.1192.168.255.254/24255.255.255.0 254 192.168.1.1192.168.1.254/25255.255.255.128 126 192.168.1.1192.168.1.126/26255.255.255.192 62 192.168.1.1192.168.1.62/27255.255.255.224 30 192.168.1.1192.168.1.30/28255.255.255.240 14 192.168.1.1192.168.1.14/29255.255.255.248 6 192.168.1.1192.168.1.6/30255.255.255.252 2 192.168.1.1192.168.1.2

    PCI EthernetDSLPPPoEISDN

    RAID

    RAID RAID RAID

    RAID

    RAID

    CD - PXE

    / PPPoEIP- LAN

    - -

    RAID RAID RAID RAID RAID qRAID1 RAID RAID RAID RAID RAID RAID

    RAID RAID 5 RAID RAID RAID 5

    RAID RAID0 RAID RAID RAID 0

    RAID RAID 6 RAID RAID RAID RAID RAID

    RAID

    .

    (SecureShell (SSH))

    /PKCS12 OpenVPN

    LDAP LDAP LDAP

    LDAP

    /

    usernamefirstNamelastNamepasswordstreetroomNumbercityregioncountrypostalCodeorganizationunittelephonefaxmailFlagmailquotaproxyFlagopenvpnFlagpptpFlagsambaFlagftpFlagwebFlagpbxStatepbxPresenceStatepbxExtensiongroups

    IP / DNS

    External LAN HotLAN DMZ

    DHCP PPPoEDSL

    IP

    Multi-WAN

    DNS DMZ

    DHCP

    IPDNS WINSTFTP NTP

    DNS

    NAT---- NAT -- NAT -- NAT MultiWAN

    ( ) X IP X IP X IP

    SSH/ IP

    DMZ (DMZ LAN)

    / /

    VPNIPsecVPN VPN ClearSDN VPN VPN

    OpenVPN WINS DNS

    PPTPVPN OpenVPN IP WINSDNS

    MicrosoftWindows MSWindowsXP

    PPTP 619, PPTP PPTP PPTP

    ClearSDN Zip Zip Zip

    ClearSDN SSL URL

    QoS ClearSDN /

    IP /IP

    -

    300 / 192.168.1.100 100 / 192.168.1.100 100 / 1.2.3.4 100 / 1.2.3.4 100 / VoIP/SIP SIP SIP

    /, /

    ClearSDN

    SID IP /

    - ACL ACL ACL

    MAC LinuxMSWindows

    ClearSDN / MIME / / IP

    PICS IP

    -

    -

    ?

    FTP -

    MySQL

    1 2 3 4

    Windows

    FTP

    Flexshares FTP

    FTP

    ( )

    [/] ()

    / (root) (users)

    POP IMAP (PushE-mail)

    POP - Mozilla Thunderbird POP - MS Outlook / Outlook Express POP -

    SMTP SMTP

    - /

    ClearSDN

    ClearSDN ( ) (OCR)

    -

    SSL

    FTP Windows MacOSX

    Windows Windows WINS/ WINS .

    / PDC

    Windows 7

    / NTP

    SMTPSSL/TLS

    SMTP Google (Gmail)

    ClearSDN

    RAID

    ClearSDN

    FAQ( ) ? ?

    (CA) /

    , (PKCS12) PKCS12 PKCS12 PKCS12 ThunderbirdOutlook/OutlookExpress

    Web/FTP

    /

    ClearSDN

    Linux MacOSWindows SSH